Re: EzVPN over frame-relay - IE Lab1 step 4.3

From: Petr Lapukhov (petr@internetworkexpert.com)
Date: Wed Sep 27 2006 - 01:26:09 ART


There should be no special problems with ezVPN over FR. After all, it's just
IPsec, with some steroids :)

Make sure you got *symmetric* routing between endpoints (i.e. traffic flows
in/out through FR interface) and check that IPsec SAs are set up properly
on both sides.

At basic level, monitor "debug crypto isakmp" "debug crypto ipsec"
and look at "show crypto ipsec sa" output for any inconsistence.

HTH

2006/9/27, Dusty <dustygoody@gmail.com>:
>
> Group,
>
> I have a silly question about this topic. Hope some of you out there can
> help me out.
>
> I'm doing the EzVPN lab in IEWB lab 1 step 4.3. The workbook simulate
> EzVPN
> client from R5 to R2 via Ethernet interface. I simulated as in the lab. It
> encrypted traffic as desire.
> However, when I try to simulate via frame-relay. I could not get traffic
> to
> be encrypted.
> I even use two routers and a frame-relay with point to point. ping traffic
> is reachable everywhere. However, I still unable to have EzVPN traffic
> over
> frame-relay.
>
> I can not find any CCO doc about EzVPN over frame-relay at all. Most of
> their scenarios are over ethernet.
>
> Is it the limitation of EzVPN over frame-relay???
>
> Thanks,
>
> Dusty
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>

-- 
Petr Lapukhov, CCIE #16379
petr@internetworkexpert.com

Internetwork Expert, Inc. http://www.InternetworkExpert.com Toll Free: 877-224-8987 Outside US: 775-826-4344



This archive was generated by hypermail 2.1.4 : Sun Oct 01 2006 - 16:55:41 ART